mirror of
https://github.com/youssefnoob003/SindriKit
synced 2026-07-07 21:57:09 +00:00
aea2eb6cfb
- Implement complete cross-process injection engine via snd_inj_ctx_t - Track explicit remote_entry_point for safe thread hijacking and PE execution - Refactor standalone syscall resolvers into a unified pipeline (scan/sort) - Perfect status code system by purging generic fallbacks in favor of highly-specific, domain-aware error codes - Fix minor pointer validation and parsing bugs in the reflective loader
2.7 KiB
2.7 KiB
Core Architecture
Design patterns, execution models, and telemetry constraints governing SindriKit.
Caution
No direct OS calls in domain logic. Host interaction goes through injected API tables or explicitly bootstrapped execution layers (syscall pipeline, FFI bridges).
Framework layers
┌─────────────────────────────────────────────────────────────┐
│ Application / implant / PoC │
└───────────────────────────┬─────────────────────────────────┘
▼
┌─────────────────────────────────────────────────────────────┐
│ Domains: loaders · injection · (future) evasion │
└───────────────────────────┬─────────────────────────────────┘
▼
┌─────────────────────────────────────────────────────────────┐
│ Primitives + execution (DI tables, syscalls, FFI) │
└───────────────────────────┬─────────────────────────────────┘
▼
┌─────────────────────────────────────────────────────────────┐
│ Parsers · Common │
└─────────────────────────────────────────────────────────────┘
Table of Contents
- dependency_injection.md —
os_api.hcontracts and backend matrix - state_machines.md — loader and injection stage graphs
- status_system.md —
snd_status_t, DEBUG vs SILENT tiers - redteam_integration.md — CMake embed, hash rotation, BYOM